Launch Week Day 1: Announcing Security Design Review
CRITICAL 9.8 NuGet

Missing Authorization in FastReport

GHSA-v726-3vg9-cp34 · CVE-2020-27998

Published · Modified

Description

An issue was discovered in FastReport before 2020.4.0. It lacks a ScriptSecurity feature and therefore may mishandle (for example) GetType, typeof, TypeOf, DllImport, LoadLibrary, and GetProcAddress.

Ready to move

Start Securing

Free, no credit card | First findings in minutes